CRITICAL · 9.8

CVE-2021-35961

Dr. ID Door Access Control and Personnel Attendance Management system uses the hard-code admin default credentials that allows remote attackers to access the system through the default password and ob...

Vulnerability Description

Dr. ID Door Access Control and Personnel Attendance Management system uses the hard-code admin default credentials that allows remote attackers to access the system through the default password and obtain the highest permission.

CVSS Score

9.8

CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
SecomDr.Id Access Control< 3.4.0.0.3.12_20210525

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-35961?

CVE-2021-35961 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Dr. ID Door Access Control and Personnel Attendance Management system uses the hard-code admin default credentials that allows remote attackers to access the system through the default password and ob...

How severe is CVE-2021-35961?

CVE-2021-35961 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.

Is there a patch for CVE-2021-35961?

Check the references section above for vendor advisories and patch information. Affected products include: Secom Dr.Id Access Control.